GPT-4's TTP lists match human MITRE labels only 39% by Jaccard similarity, yet an embedding-based attribution model ranks the correct threat actor 7.55 on average out of 29, beating the random baseline of 15.
etda.or.th/cgi-bin/aptgroups.cgi, 2024
1 Pith paper cite this work. Polarity classification is still indexing.
1
Pith paper citing it
fields
cs.CR 1years
2025 1verdicts
CONDITIONAL 1representative citing papers
citing papers explorer
-
On Technique Identification and Threat-Actor Attribution using LLMs and Embedding Models
GPT-4's TTP lists match human MITRE labels only 39% by Jaccard similarity, yet an embedding-based attribution model ranks the correct threat actor 7.55 on average out of 29, beating the random baseline of 15.